The absence of 2FA wasn't the problem.
Just a convenient and oft-used scapegoat to deflect some blame. The problem was users accessing their service without a password.
Dropbox has warned around 5,000 users that attackers compromised their accounts by abusing a legacy Lenovo login integration. In an email sent to affected customers, the cloud storage biz said attackers exploited an integration that allowed users to access Dropbox using Lenovo IDs. Dropbox blamed "an issue with Lenovo's email …